Skip to content
#

pip-security

Here are 4 public repositories matching this topic...

Language: All
Filter by language

Package Firewall — self-hosted supply chain security for macOS. Intercepts npm/pip/cargo/yarn in ALL shells including AI agents. 4 vuln sources (OSV + GHSA + deps.dev + CISA KEV). Zero telemetry.

  • Updated Apr 1, 2026
  • TypeScript

Local, fully self-contained demo of a dependency confusion attack using Nexus Repository OSS — showing how group repositories merge public and internal package sources by version, and two layers of defense (client-side scope routing + server-side Routing Rules) that close the gap.

  • Updated Sep 26, 2026
  • Shell

Add this topic to your repo

To associate your repository with the pip-security topic, visit your repo's landing page and select "manage topics."

Learn more